﻿using Microsoft.AspNetCore.Authorization;
using Microsoft.AspNetCore.Mvc;

namespace CmsIdentity.Controllers
{
  [ApiController]
  [Route("api/auth/secure")]
  public class SecureController : ControllerBase
  {
    [HttpGet]
    [Authorize(Roles = "Admin")] 
    public IActionResult Get()
    {
      return Ok(new { message = "This is a secure endpoint!" });
    }
  }
}
